Cybersecurity Threat Analyst
Invictus International Consulting, LLC Colorado Springs, Colorado, United States
Defense and Space Manufacturing · 201-500 employees
About the role
The analyst will support proactive threat hunting by analyzing security telemetry and correlating data from various sources to identify adversary activity. They are responsible for documenting findings, reporting trends, and escalating potential detection gaps to senior personnel.
What they look for
Requirements
Candidates must possess a bachelor's degree in a technical discipline or equivalent experience, along with at least two years of relevant professional experience. A current DoD 8570 IAT II or IAM II certification and an active TS/SCI clearance are required.
Full description
Title: Cybersecurity Threat Analyst I
Location: Colorado Springs, CO
Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph
Job Details:
- Support proactive threat analysis and hunt activities using established hypotheses, queries, procedures, and data sources
- Proactively analyze security telemetry to identify indicators of compromise, anomalous behavior, and adversary activity that has not met an incident threshold or has evaded automated security controls
- Assess and correlate data from multiple sources, including network, endpoint, identity, SIEM, threat intelligence, vulnerability, and other available security data
- Document hunt activity, findings, evidence, and recommended follow-on actions in authorized systems and initiate or support incident-response processes when malicious activity is identified
- Provide relevant findings and trends for SOC operational reporting, significant-activity reporting, and defensive awareness
- Research indicators, adversary behaviors, and suspicious activity under guidance from senior threat personnel.
- Maintain clear hunt notes and document negative as well as positive findings to support repeatability and knowledge development
- Escalate suspicious activity and potential detection gaps to senior threat analysts and watch operations
Requirements:
- Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
- Minimum two (2) years of relevant experience in addition to education level
- Foundational knowledge of common cyber threats, indicators of compromise, network/host artifacts, and security monitoring concepts
- Familiarity with SIEM/search technologies, threat intelligence, MITRE ATT&CK, or security data analysis is desired
- Ability to document analytical reasoning and communicate findings clearly
- Must possess current DoD 8570 IAT II or IAM II certification
- Experience working in a DoD or IC environment desired
- Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph
Equal Opportunity Employer/Veteran/Disabled
Similar roles
-
Senior Cybersecurity Analyst
Orbia Bogota, Capital District, RAP (Especial) Central, Colombia
-
CyberSecurity - Interns
Auctane Wrocław, Lower Silesian Voivodeship, Poland
-
Senior Manager Cybersecurity
Sia Brussels, Brussels-Capital, Belgium
-
Senior Consultant in Cybersecurity
Sia Antwerp, Antwerp, Belgium
-
Senior Security Engineer, AI/ML, National Security, Public Sector
Google Washington, District of Columbia, United States · $174K–$252K/yr
-
Pre-Sales Engineer, Cybersecurity
Hewlett Packard Enterprise Washington, District of Columbia, United States · $146K–$343K/yr